SEARCH RESULTS
 
Showing 1-10 of 206 records
 
Expand article

The McAfee Secure Standard: Sort Of

2008-10-07 23:47:00 by Russ McRee in HolisticInfoSec.org
 
...expected of the McAfee Secure Service. My discussions with Joe Pierini have been productive and respectful, he means well, and I believe he will try to drive the greater McAfee leadership to officially incorporate suggestions made in this blog I have even had the pleasure of reading a Researcher/Finder Policy that very succinctly describes...
 
 
 
 
 
Expand article

Symantec + Vontu: A Marriage Made In Heaven?

2007-11-13 08:55:35 by Thomas Raschke in Security & Risk Management
 
...expect strong, integrated solutions that address their problems However, this is also where I see the main challenge for Symantec/Vontu and for that matter for anybody acquiring or thinking about a more pronounced strategy for data-centric risk based security SPEED. ILP is hot because customers need to address their insider challenges (or...
 
 
 
 
 
Expand article

Google Changes Privacy Policy

2007-03-15 08:31:00 by Eric Marvets in The Security Samurai
 
...expect the specifics in the near future. Their current stated intention is to change parts of the IP address and the cookie. Unless they completely strip the logs of the IP and cookie, then it will never truly be anonymous, but I think they will change it to the point that the data could never be used in a court of law Its not perfect, but...
 
 
 
 
 
Expand article

Common Criteria and answering the question 'Is it Safe'

2007-12-20 16:57:00 by sdl in The Security Development Lifecycle
 
...expectations 2) Implementation vulnerabilities software that exposes risk based on implementation deficiencies 3) Deployment vulnerabilities software that was misconfigured in deployment as to expose risk that might have been prevented by other configurations Lets talk about each of these in the context of Common Criteria For classes of...
 
 
 
 
 
Expand article

The New Threat Modeling Process

The Article has images
2007-10-02 01:15:35 by sdl in The Security Development Lifecycle
...expect people to take away from a class, and making this simple and familiar helps ensure theres room for the other important parts First, the process hamster wheel , (with apologies to Yankee Group analyst Andy Jaquith Now that youve seen the wheel, Ill briefly describe the steps Vision : Consider your security requirements, scenarios...
 
 
 
 
 
Expand article

Patrick Smith on Aviation Security

2008-01-11 13:47:35 by schneier in Schneier on Security
 
...expect street protests or airport sit-ins from citizen fliers, and maybe we shouldn't expect too much from a press and media that have had no trouble letting countless other injustices slip to the wayside. And rather than rethink our policies, the best we've come up with is a way to skirt them -- for a fee, naturally -- via schemes like...
 
 
 
 
 
Expand article

Killing spree at Omaha mall

2007-12-08 18:03:00 by John Sexton in The Bullet Proof Blog
 
...expect them all to look Middle Eastern. However, this disturbed teenager, Robert Hawkins and if you go back to the Oklahoma bombing, Timothy McVeigh, looked like your typical "guy next door" american. I think there is no question in any of our minds that they both inflicted terror into the hearts of their victims and survivors alike Much...
 
 
 
 
 
Expand article

Things are not always what they seem - just ask Eliot Spitzer.

2008-03-11 13:17:00 by John Sexton in The Bullet Proof Blog
 
...expect the unexpected', that way, you will not be caught off-guard. The announcement yesterday afternoon that the former Attorney General (8 years) and New York State Governor (1 year), Eliot Spitzer was being investigated for his part in a prostitution ring caught a lot of people off guard A crooked politician getting his hand caught in the...
 
 
 
 
 
Expand article

Measuring Vulnerability

The Article has images
2008-04-14 14:31:38 by JonesJ in RiskAnalys.is
...expect that some portion of the threat population would have the skill and resources to compromise a control (shown below Now, because of the uncertainties regarding threat capabilities and control strength, it would be more accurate to describe control strength as a distribution as well. For example, we expect the control is at least...
 
 
 
 
 
Expand article

Cloud Stacks: Please Mind The Gap

The Article has images
2008-04-24 20:54:37 by Craig Balding in Cloud Security
...expect from them and what they expect from you However, to deliverthe service to you, they rely on other Cloud providers further down the stack. In fact, at any level in the Cloud Stack, it could be multiple players providing the service *they* rely on; e.g. Cloud Storage, Cloud Comput